#VU121709 Improper input validation in Oracle Communications Billing and Revenue Management - CVE-2025-26333
Published: January 20, 2026
Oracle Communications Billing and Revenue Management
Oracle
Description
The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
The vulnerability exists due to improper input validation within the Platform (BSAFE Crypto-J) component in Oracle Communications Billing and Revenue Management. A remote non-authenticated attacker can exploit this vulnerability to gain access to sensitive information.